Commit Graph

1417 Commits (d0086fe9ba6f4f0b031581ba5e0469d24137d2b1)
 

Author SHA1 Message Date
Mariano Cano d0086fe9ba
Merge pull request #375 from smallstep/admin-templates
Use new admin template for K8ssa and admin-OIDC provisioners.
4 years ago
Mariano Cano 4c8bf87dc1 Use new admin template for K8ssa and admin-OIDC provisioners.
This change replaces the .Insecure.CR template to one that sets
all the SANs, but uses key usages and extended key usages for
regular TLS certificates.
4 years ago
Mariano Cano 309d9ddcc4
Merge pull request #374 from smallstep/missing-token-ids
Create a hash of a token if a token id is empty.
4 years ago
Mariano Cano d79b4e709e Create a hash of a token if a token id is empty. 4 years ago
Mariano Cano 656315bd61
Merge pull request #371 from smallstep/bundle-awskms-init
Add step-awskms-init to the binary releases.
4 years ago
Mariano Cano c2fd6a8421 Add step-awskms-init to the binary releases.
Fixes 332
4 years ago
Mariano Cano 4f3b24af8f
Merge pull request #370 from smallstep/yubi-management-key
Make the YubiKey management key configurable.
4 years ago
Mariano Cano f100b2d0e3 Make the YubiKey management key configurable.
With this change the default management key is not required as the
user is able to set its own.

Fixes #323
4 years ago
Mariano Cano 87bbcee239 Update go.sum 4 years ago
Mariano Cano 9573b47efb
Merge pull request #369 from acipia/master
avoid using yubikey attestation cert
4 years ago
max furman 3e874a1e72 Fix RHEL/CentOS install docs 4 years ago
Pierre Laden 692f7692a2 fix #2 indentation 4 years ago
Pierre Laden 290d5ee979 fix gofmt complain 4 years ago
Pierre Laden 179e793f1a - provide PINpolicy always to piv-go to avoid trying to use attestation cert, which we might not have
- bump piv-go version to 1.6.0
4 years ago
Max 946aedca92
Merge pull request #368 from gucchisk/error_message
Fix error message of bad request
4 years ago
gucchisk 4ad6be2680 Fix error message of bad request 4 years ago
Carl Tashian b792f9144f
Merge pull request #364 from smallstep/docker-tweaks
Update Dockerfile.step-ca to match best practices
4 years ago
Mariano Cano 276e307a1d Add extra tests for CustomSSHTemplateOptions 4 years ago
Mariano Cano 3fc9124559
Merge pull request #366 from smallstep/max/ignore-null
Ignore `null` string for x509 and ssh templateData.
4 years ago
max furman da9f0b09af Ignore `null` string for x509 and ssh templateData. 4 years ago
Carl Tashian 3b31c6d2f5 Change `HEALTHCHECK` to use `step ca health`. Change shell `CMD exec` to skip redundant `/bin/sh -c` 4 years ago
Mariano Cano 81c6e01269 Fix unit test. 4 years ago
Mariano Cano 3ac0ef2eaa Update crypto to v0.6.0 4 years ago
Mariano Cano 50d09c183b Fix example and use ClientCAs.
Server trust client certificates using ClientCAs instead of RootCAs.
4 years ago
Carl Tashian 6ffc438ed1 Update Dockerfile.step-ca to match best practices
- See https://docs.docker.com/develop/develop-images/dockerfile_best-practices/
- Added a .dockerignore file to reduce the build context size
- Added a HEALTHCHECK (curl the CA)
4 years ago
Max 54e43604ff
Merge pull request #363 from smallstep/max/k8ssa
Standardize k8ssa check on issuer name
4 years ago
Mariano Cano f3b65e54ac Update go.step.sm to v0.5.0
Solves the problem of enforcing the signature algorithm. This
causes issues if the intermediate key is not an ECDSA key.
4 years ago
max furman ce9af5c20f Standardize k8ssa check on issuer name 4 years ago
max furman 925edaede2 revert to skip_cleanup in travis 4 years ago
Mariano Cano 8ee246edda Upgrade go.step.sm to v0.4.0 4 years ago
Mariano Cano ce5e1b4934 Fix merge issue. 4 years ago
Mariano Cano 35bd3ec383
Merge pull request #329 from smallstep/ssh-cert-templates
SSH cert templates
4 years ago
Mariano Cano cef0475e71 Make clear what's a template/unsigned certificate. 4 years ago
Mariano Cano 4d375a06f5 Make clearer what's an unsigned cert. 4 years ago
Mariano Cano b7269b6579 Fix comment. 4 years ago
Mariano Cano 193d18ee21 Hide unnecessary error. 4 years ago
Mariano Cano ef86bedb2c Upgrade go.step.sm dependency to v0.3.0 4 years ago
Mariano Cano c94a1c51be Merge branch 'master' into ssh-cert-templates 4 years ago
Mariano Cano ba918100d0 Use go.step.sm/crypto/jose
Replace use of github.com/smallstep/cli/crypto with the new package
go.step.sm/crypto/jose.
4 years ago
Mariano Cano 896a7a508f
Merge pull request #357 from Dennis14e/patch-1
README: Fix url to step cli tool
4 years ago
Max f3e4ee2aa3
Merge pull request #359 from smallstep/max/csr-no-subject-test
Remove unused code; fix usage wrong word; add gap time for unit test
4 years ago
max furman 46fc922afd Remove unused code; fix usage wrong word; add gap time for unit test 4 years ago
Mariano Cano 03d642e59c Update go.step.sm/crypto to v0.2.0
Fixes #302
4 years ago
max furman 81875074e3 tie -> the in comment 4 years ago
Dennis Neufeld 43833e54f0
README: Fix url to step cli tool 4 years ago
Mariano Cano 3f660ff07e
Merge pull request #354 from smallstep/bundle-awskms-init
Add step-awskms-init into the builds.
4 years ago
Mariano Cano ffedccf439 Add step-awskms-init into the builds. 4 years ago
Carl Tashian 6a98de943d
Merge pull request #353 from smallstep/docker-buildx
Small changes to docker/travis
4 years ago
Carl Tashian 066017ae81 revert debian/changelog 4 years ago
Carl Tashian 821a464ae5 Remove docker testing from makefile 4 years ago